Vulnerability index

Browse CVEs

259 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.4 CVE-2026-59687 An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows… Connection Manager For Objectscale 7.2.54.19 / 7.2.63.3+ Fix from $1,9502026-07-27 HIGH 8.4 CVE-2026-59688 An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows… Connection Manager For Objectscale 7.2.54.19 / 7.2.63.3+ Fix from $1,9502026-07-27 HIGH 8.0 CVE-2026-59689 An Incorrect Authorization vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF all… Connection Manager For Objectscale 7.2.54.19 / 7.2.63.3+ Fix from $1,9502026-07-27 HIGH 8.0 CVE-2026-59690 A Missing Authorization vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, MOVEit WAF, and Multi… Connection Manager For Objectscale 7.1.35.16 / 7.2.54.19+ Fix from $1,9502026-07-27 HIGH 8.4 CVE-2026-59686 An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows… Connection Manager For Objectscale 7.2.54.19 / 7.2.63.3+ Fix from $1,9502026-07-27 MEDIUM 5.4 CVE-2026-15968 Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Progress MOVEit Transfer. This issue affects M… Moveit Transfer 2025.1.5 / 2026.0.3+ Fix from $1,6002026-07-23 CRITICAL 9.8 CVE-2026-15966 Permissive cross-domain security policy with untrusted domains vulnerability in Progress MOVEit Transfer. This issue affects MOVEit Transfer: before… Moveit Transfer 2025.1.5 / 2026.0.3+ Fix from $2,3002026-07-23 CRITICAL 9.8 CVE-2026-15967 Insufficient session expiration vulnerability in Progress MOVEit Transfer. This issue affects MOVEit Transfer: before 2025.1.5, from 2026.0.0 before… Moveit Transfer 2025.1.5 / 2026.0.3+ Fix from $2,3002026-07-23 CRITICAL 9.8 CVE-2026-10697 Improper Authentication vulnerability in Progress MOVEit Transfer. This issue affects MOVEit Transfer: before 2025.1.5, from 2026.0.0 before 2026.0.… Moveit Transfer 2025.1.5 / 2026.0.3+ Fix from $2,3002026-07-23 MEDIUM 6.5 CVE-2026-14932 In Progress® Telerik® UI for AJAX prior to v2026.2.708, the obsolete RadChart component's ChartImage.axd handler is vulnerable to unauthenticated fil… Telerik Ui For Asp.net Ajax 2026.2.708+ Fix from $1,6002026-07-22 MEDIUM 5.3 CVE-2026-14865 In Progress® Telerik® UI for AJAX prior to v2026.2.708, the internal LayoutBuilder control processes client-state XML without disabling DTD processin… Telerik Ui For Asp.net Ajax 2026.2.708+ Fix from $1,6002026-07-22 HIGH 8.1 CVE-2026-13185 In Progress® Telerik® UI for AJAX prior to v2026.2.708, applications using cookie-based storage in RadPersistenceManager or RadDockLayout deserialize… Telerik Ui For Asp.net Ajax 2026.2.708+ Fix from $1,9502026-07-22 HIGH 8.1 CVE-2026-13186 In Progress® Telerik® UI for AJAX prior to v2026.2.708, a path traversal vulnerability in the file-based persistence storage provider can be exploite… Telerik Ui For Asp.net Ajax 2026.2.708+ Fix from $1,9502026-07-22 HIGH 8.1 CVE-2026-13187 In Progress® Telerik® UI for AJAX prior to v2026.2.708, DialogHandler provider type input may be tampered with, potentially altering dialog processin… Telerik Ui For Asp.net Ajax 2026.2.708+ Fix from $1,9502026-07-22 HIGH 8.1 CVE-2026-13190 In Progress® Telerik® UI for AJAX prior to v2026.2.708, a deserialization vulnerability in the persistence utilities allows unsafe type instantiation… Telerik Ui For Asp.net Ajax 2026.2.708+ Fix from $1,9502026-07-22 HIGH 7.5 CVE-2026-13189 In Progress® Telerik® UI for AJAX prior to v2026.2.708, insufficient validation of the language parameter in the spell check handler may allow an att… Telerik Ui For Asp.net Ajax 2026.2.708+ Fix from $1,9502026-07-22 MEDIUM 6.5 CVE-2026-13192 In Progress® Telerik® UI for AJAX prior to v2026.2.708, insufficient validation of content submitted to the RadEditor PDF export feature may allow an… Telerik Ui For Asp.net Ajax 2026.2.708+ Fix from $1,6002026-07-22 MEDIUM 5.9 CVE-2026-13188 In Progress® Telerik® UI for AJAX prior to v2026.2.708, DialogHandler request parameters may be tampered with, potentially altering dialog server-sid… Telerik Ui For Asp.net Ajax 2026.2.708+ Fix from $1,6002026-07-22 HIGH 8.1 CVE-2026-13181 In Progress® Telerik® UI for AJAX prior to v2026.2.708, forged upload metadata can influence AsyncUploadTypeName processing and trigger unsafe attack… Telerik Ui For Asp.net Ajax 2026.2.708+ Fix from $1,9502026-07-22 HIGH 7.5 CVE-2026-13182 In Progress® Telerik® UI for AJAX prior to v2026.2.708, RadAsyncUpload client-state processing can distinguish decrypt failures from invalid-JSON par… Telerik Ui For Asp.net Ajax 2026.2.708+ Fix from $1,9502026-07-22 HIGH 7.5 CVE-2026-13183 In Progress® Telerik® UI for AJAX prior to v2026.2.708, RadAsyncUpload upload metadata processing may leak cryptographic validity through measurable … Telerik Ui For Asp.net Ajax 2026.2.708+ Fix from $1,9502026-07-22 HIGH 7.5 CVE-2026-13184 In Progress® Telerik® UI for AJAX prior to v2026.2.708, when Telerik.Upload.ConfigurationHashKey is absent and machineKey is not explicitly configure… Telerik Ui For Asp.net Ajax 2026.2.708+ Fix from $1,9502026-07-22 CRITICAL 9.8 CVE-2026-8801 Path equivalence: vulnerability in Progress MOVEit Transfer (File Upload modules). This issue affects MOVEit Transfer: before 2025.0.8, from 2025.1.… Moveit Transfer 2025.0.8 / 2025.1.4+ Fix from $2,3002026-07-08 CRITICAL 9.8 CVE-2026-8649 Improper Neutralization of Special Elements in Data Query Logic vulnerability in Progress MOVEit Transfer (Custom Reports modules). This issue affec… Moveit Transfer 2025.0.7 / 2025.1.3+ Fix from $2,3002026-07-08 HIGH 8.8 CVE-2026-8800 Incorrect Authorization vulnerability in Progress MOVEit Transfer (Audit User module). This issue affects MOVEit Transfer: before 2025.0.7, from 202… Moveit Transfer 2025.0.7 / 2025.1.3+ Fix from $1,9502026-07-08 HIGH 7.5 CVE-2026-8650 Relative path traversal vulnerability in Progress MOVEit Transfer (Admin Settings module). This issue affects MOVEit Transfer: before 2025.0.7, from… Moveit Transfer 2025.0.7 / 2025.1.3+ Fix from $1,9502026-07-08 HIGH 7.5 CVE-2026-8651 Limited authentication bypass by spoofing vulnerability in Progress MOVEit Transfer (HTTPS module). This issue affects MOVEit Transfer: before 2025.… Moveit Transfer 2025.0.7 / 2025.1.3+ Fix from $1,9502026-07-08 HIGH 7.5 CVE-2026-10699 Missing release of memory after effective lifetime vulnerability in Progress MOVEit Transfer (Custom Reports modules). This issue affects MOVEit Tra… Moveit Transfer 2025.0.8 / 2025.1.4+ Fix from $1,9502026-07-08 HIGH 7.2 CVE-2026-10698 Improper Neutralization of Special Elements in Data Query Logic vulnerability in Progress MOVEit Transfer (Custom Reports modules). This issue affec… Moveit Transfer 2025.0.8 / 2025.1.4+ Fix from $1,9502026-07-08 MEDIUM 5.4 CVE-2026-11903 Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Progress MOVEit Transfer (Ad Hoc module). This… Moveit Transfer 2025.0.8 / 2025.1.4+ Fix from $1,6002026-07-08